VYPR
Unrated severityNVD Advisory· Published Feb 9, 2024· Updated Jun 3, 2025

HCL Sametime is impacted by a failure to invalidate sessions

CVE-2023-45718

Description

Sametime is impacted by a failure to invalidate sessions. The application is setting sensitive cookie values in a persistent manner in Sametime Web clients. When this happens, cookie values can remain valid even after a user has closed out their session.

Affected products

2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.